CMGT/430 Week 5 QUIZ Questions

Faculty: Vijay Jonnalagadda

(Pick the best answer suggested in the associated reading)

Question #

Question

Your Answer

1

 

Chapter 14

The Security policy is designed to address the following

 

A.     Organizational structure

B.      Organizational Business objectives

C.      The specifics of the Industry that organization belongs

D.     All of the above

E.      None of the above

 

 

2

 

Chapter 14

List the 4 layers recognized by NIST SP 800-16

__________________

___________________

___________________

___________________

 

 

 

3

 

Chapter  14

Following element is not included in Organization security policy

 

A.     Business Ethics

B.      Business Continuity

C.      Violations Reporting

D.     Authentication

 

 

 

4

 

Chapter 14

Following standard(s) has good information on setting up IT security policies

 

A.     ISO 17799

B.      COBIT

C.      ISACA

D.     All of the above

E.      None of the above

 

5

 

Chapter 14

 Following standard talks about the employee specific security

 

A.     ISO 17799

B.      COBIT

C.      ISACA

D.     All of the above

E.      None of the above

 

 

6

 

Chapter 14

An employee was fired after it was revealed in personal email he sent through company mail that he faked sickness few times.  Is the firing justified

 

No, because reading his personal emails is violation of his privacy rights

Yes, because the privacy is protected when using company resources.

 

 

7

 

Chapter 15

List any 4 elements of Security Audit and Alarms model

 

__________________

___________________

___________________

___________________

 

 

8

 

Chapter 15

Application level vulnerabilities are found in the following

 

A.     Syslog

B.      Windows System log

C.      Windows Application Log

D.     Security Log

E.      All of the above

 

 

 

9

 

Chapter 15

Following is the best data analysis approach to define abnormal events

 

A.     Basic Alerting

B.      Baselining

C.      Anomaly Detection

D.     Correlation

E.      All of the above

 

 

10

 

Chapter 15

Following analysis approach relies on relating one event to another

 

A.     Basic Alerting

B.      Baselining

C.      Anomaly Detection

D.     Correlation

E.      All of the above

 

 

 

11

 

Chapter 15

In the case study, why did the security officer choose MARS system

 

__________________________

 

 

12

 

Chapter 11

Certification most suited for jobs in government organizations

 

A.     CGEIT

B.      CISA

C.      CSSLP

D.     CISSP

E.      All of the above

 

13

 

Chapter 11

Following certification focuses on software development

 

A.     CGEIT

B.      CISA

C.      CSSLP

D.     CISSP

E.      All of the above

 

 

 

    • 11 years ago
    CMGT/430 Week 5 QUIZ 100% Correct 13/13
    NOT RATED

    Purchase the answer to view it

    blurred-text
    • attachment
      cmgt430_week_5_quiz_all_correct.docx